Skip to content

bluefrostsecurity/CVE-2023-2008

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 
 
 

Repository files navigation

CVE-2023-2008

Proof of concept exploit for CVE-2023-2008, a bug in the udmabuf driver of the Linux kernel fixed in 5.19-rc4.

You can find a description of the bug and the exploitation strategy in our blog post.

The exploit was tested on a vulnerable Ubuntu 22.04, and it requires access to the /dev/udmabuf device. This is only accessible to users in the kvm group, so you may need to add your test user to this group when testing the exploit.

To test, simply compile with gcc and run the resulting binary.

About

Proof of concept code for CVE-2023-2008

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages